Page 161 / 228 Scroll up to view Page 156 - 160
Chapter 13 Firewall
ericom D1000 modem User’s Guide
161
the “triangle route” (also called asymmetrical route) problem may occur. The steps below describe
the “triangle route” problem.
1
A computer on the LAN initiates a connection by sending out a SYN packet to a receiving server on
the WAN.
2
The Device reroutes the SYN packet through Gateway
A
on the LAN to the WAN.
3
The reply from the WAN goes directly to the computer on the LAN without going through the
Device.
As a result, the Device resets the connection, as the connection has not been acknowledged.
Figure 110
“Triangle Route” Problem
13.6.4.2
Solving the “Triangle Route” Problem
If you have the Device allow triangle route sessions, traffic from the WAN can go directly to a LAN
computer without passing through the Device and its firewall protection.
Another solution is to use IP alias. IP alias allows you to partition your network into logical sections
over the same Ethernet interface. Your Device supports up to three logical LAN interfaces with the
Device being the gateway for each logical network.
It’s like having multiple LAN networks that actually use the same physical cables and ports. By
putting your LAN and Gateway
A
in different subnets, all returning network traffic must pass
through the Device to your LAN. The following steps describe such a scenario.
1
A computer on the LAN initiates a connection by sending a SYN packet to a receiving server on the
WAN.
2
The Device
reroutes the packet to Gateway A, which is in Subnet 2.
3
The reply from the WAN goes to the Device.
4
The Device then sends it to the computer on the LAN in Subnet 1.
1
2
3
WAN
LAN
A
ISP 1
ISP 2
Page 162 / 228
Chapter 13 Firewall
ericom D1000 modem User’s Guide
162
Figure 111
IP Alias
1
2
3
LAN
A
ISP 1
ISP 2
4
WAN
Subnet 1
Subnet 2
Page 163 / 228
ericom D1000 modem User’s Guide
163
C
HAPTER
14
Parental Control
14.1
Overview
Parental control allows you to block web sites with the specific URL. You can also define time
periods and days during which the Device performs parental control on a specific user
.
14.2
The Parental Control Screen
Use this screen to enable parental control, view the parental control rules and schedules.
Click
Security > Parental Control
to open the following screen.
Figure 112
Security > Parental Control
The following table describes the fields in this screen.
Table 63
Security > Parental Control
LABEL
DESCRIPTION
Parental Control
Use this field to activate or deactivate parental control.
Add new PCP
Click this to create a new parental control rule.
#
This is the index number of the rule.
Status
This indicates whether the rule is active or not.
A yellow bulb signifies that this rule is active. A gray bulb signifies that this rule is not
active.
PCP Name
This shows the name of the rule.
Home Network User
This shows the MAC address of the LAN user’s computer to which this rule applies.
Internet Access
Schedule
This shows the day(s) and time on which parental control is enabled.
Network Service
This shows whether the network service is configured. If not,
None
will be shown.
Page 164 / 228
Chapter 14 Parental Control
ericom D1000 modem User’s Guide
164
14.2.1
Add/Edit Parental Control Rule
Click
Add
new PCP
in the
Parental Control
screen to add a new rule or click the
Edit
icon next to
an existing rule to edit it. Use this screen to configure a restricted access schedule and/or URL
filtering settings to block the users on your network from accessing certain web sites.
Figure 113
Add/Edit Parental Control Rule
Website Blocked
This shows whether the website block is configured. If not,
None
will be shown.
Modify
Click the
Edit
icon to go to the screen where you can edit the rule.
Click the
Delete
icon to delete an existing rule.
Apply
Click
Apply
to save your changes.
Cancel
Click
Cancel
to restore your previously saved settings.
Table 63
Security > Parental Control (continued)
LABEL
DESCRIPTION
Page 165 / 228
Chapter 14 Parental Control
ericom D1000 modem User’s Guide
165
The following table describes the fields in this screen.
Table 64
Parental Control: Add/Edit
LABEL
DESCRIPTION
General
Active
Select the checkbox to activate this parental control rule.
Parental Control
Profile Name
Enter a descriptive name for the rule.
Home Network User
Select the LAN user that you want to apply this rule to from the drop-down list box. If
you select
Custom
, enter the LAN user’s MAC address. If you select
All
, the rule
applies to all LAN users.
Internet Access Schedule
Day
Select check boxes for the days that you want the Device to perform parental control.
Time of Day to Apply
Enter the starting and ending time that the LAN user is allowed access.
Network Service
Network Service
Setting
If you select
Block
, the Device prohibits the users from viewing the Web sites with the
URLs listed below.
If you select
Access
, the Device blocks access to all URLs except ones listed below.
Add new service
Click this to show a screen in which you can add a new service rule. You can configure
the
Service Name
,
Protocol
, and
Name
of the new rule.
Active
This shows whether a configured service is activated or not.
Service Name
This shows the name of the rule.
Protocol
This shows the protocol of the rule.
Port
This shows the port of the rule.
Modify
Click the
Edit
icon to go to the screen where you can edit the rule.
Click the
Delete
icon to delete an existing rule.
Blocked Site/URL
Enter the URL of web sites or URL keywords to which the Device blocks access.
Apply
Click
Apply
to save your changes.
Cancel
Click
Cancel
to exit this screen without saving.

Rate

5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top